Application Security Engineer

Company: Intercom
Apply for the Application Security Engineer
Location: London
Job Description:

Overview

In this role you will own and evolve Fin’s tier-zero security capabilities, shaping secure product design for enterprise customers. You will partner with engineering across the SDLC to build authentication, SAML/SSO, logging, and other trusted controls, while leading security incident response. You’ll contribute to an AI-first security strategy that enhances product security at scale. The opportunity sits at the intersection of AI-powered customer service and robust security, offering meaningful impact on trusted user experiences.

Pay / Benefits

  • competitive salary and equity
  • health and dental insurance
  • pension scheme and matching
  • flexible paid time off
  • Cycle-to-Work Scheme
  • MacBooks provided

Responsibilities

  • Own and engineer tier-zero security capabilities for secure deployment and management
  • Design and evolve authentication, SAML/SSO, permissions, audit logs, and enterprise controls
  • Partner with engineering across the software development lifecycle to build secure products
  • Perform architecture reviews, threat modelling, and security assessments for new features
  • Build security tooling, automation, and developer-facing building blocks
  • Contribute to secure development standards, guidance, and best practices
  • Lead security initiatives across the SDLC to address risks early
  • Participate in on-call rotation and lead security incident response and remediation
  • Drive security initiatives from problem to measurable outcomes
  • Collaborate with teams building AI-powered products to mitigate emerging risks
  • Support secure adoption of AI-assisted development tools and workflows

Key requirements

  • Proven application security, product security, or security engineering experience in a SaaS environment
  • Strong software engineering skills for building and operating production systems
  • Deep understanding of modern application security threats, secure SDLC practices, and threat modelling
  • Experience designing or securing authentication, authorization, identity, or enterprise security capabilities
  • Experience conducting architecture reviews and security assessments for complex systems
  • Hands-on security incident response experience, including leading investigations and remediation
  • Strong programming skills and experience building tools or automation
  • Comfort with using AI-assisted development tools to boost productivity
  • Strong ability to communicate security concepts clearly and collaborate with engineering teams
  • Pragmatic approach balancing security, customer impact, and engineering velocity
  • collaborative and cross-functional communication
  • problem-solving with a pragmatic security-first mindset
  • ability to translate security concepts for non-security stakeholders
  • Application security
  • SaaS security practices
  • Authentication, authorization, and identity (e.g., SAML/SSO)

…

Posted: September 14th, 2026